An SEC filing also alleged that the company didn't do enough to investigate a 2014 breach

Share

Shares

Copy Link

{copyShortcut} to copy
Link copied!

Updated: 12:19 PM CST Mar 7, 2017

Hide TranscriptShow Transcript

WEBVTT ATTACK.NORTH KOREA IS DENYING.MARK: IT GETS MORE WEIRDEVERY DAY.THE C.E.O. OF YAHOO IS NOTGOING TO LOSE HER CASHBONUSES DUE TO THATCOMPANY'S MASSIVE SECURITYBREACHES.MARISSA MAYER CHOSE TO GIVEUP HER ANNUAL EQUITY GRANTFOR THIS YEAR.NO DOLLAR AMOUNT HAS BEENPROVIDED BUT SHE RECEIVEDMORE THAN $162 MILLION INSALARY AND STOCK AWARDSDURING HER FIRST FOUR YEARSAT THE COMPANY.THE TWO SECURITY BREACHESAFFECTED MORE THAN ONEBILLION YAHOO CUSTOMERS.>> THE LEADERS OF WELLSFARGO TOOK A BIG PAY HITDUE TO THAT BANK'S FAKEACCOUNT SUBSTANTIAL.WELLS FARGO BOARD OFDIRECTORS STRIPPED ITSC.E.O. AND SEVEN TOPEXECUTIVES OF THE 2016BONUSES THAT AS THE BANKSEEMS TO HOLD MANAGEMENTACCOUNTABLE FOR STUMBLES.WELLS FARGO ADMITTED TO

Yahoo cookies breach compromised 32 million accounts

An SEC filing also alleged that the company didn't do enough to investigate a 2014 breach

"The announcement talked a lot about who is not getting their bonus," Zenedge co-founder, CUJO Smart Firewall CTO and cybersecurity expert Leon Kuperman tells us Thursday. "What about changing the corporate environment, structure and culture to think security first? Blaming this on a state actor is lame. Internal leaks are part of business, the key is to have compensating controls that prevent these types of leaks from being able to damage the company."

It gets worse - the same report claimed that Yahoo's security team and senior executives allegedly failed to thoroughly investigate the 2014 breach that infiltrated 500 million accounts. While the company implemented new security measures and alerted 26 users of the hack, an in-depth examination was never conducted.

"Yahoo is not thinking like a technology company. They don't have a CTO, but rather a group of SVP's that are responsible for product and engineering for specific product lines," Kuperman explained. "A company like that needs a very strong CTO, and a seat at the table for a chief security officer."

Can Yahoo repair its reputation after so much negative publicity?

"They have to show the world they are taking technology and security seriously," Kuperman said. "That is going to take changes at the C-level, not just some inconvenient bonuses being taken away."